Trojan

Trojan.Heur.PT.qiZabO00xDlb (file analysis)

Malware Removal

The Trojan.Heur.PT.qiZabO00xDlb is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan.Heur.PT.qiZabO00xDlb virus can do?

  • Executable code extraction
  • Creates RWX memory
  • Unconventionial language used in binary resources: Chinese (Simplified)
  • The binary likely contains encrypted or compressed data.
  • Network activity detected but not expressed in API logs
  • Anomalous binary characteristics

How to determine Trojan.Heur.PT.qiZabO00xDlb?


File Info:

crc32: 1DE5490A
md5: 542d733b27172b0f2e3c05f2dfa64b72
name: 542D733B27172B0F2E3C05F2DFA64B72.mlw
sha1: d7be24770b972628188ece7528adc8986820cbe2
sha256: d5525dc82fe1a47ada85f5130ce86c92c58c36fe2f06cf7fbbe9ddf422562598
sha512: df3d97b3aece685ac5422ba728bedc55f2d0fd126dc18dbfe9836be2046d975338bdf49ec654ef9b87592c8f382833d22f2fb12e1828cd1f4afef1a70a4d9946
ssdeep: 6144:kAurw+0ezJzQ7BP/IHrkUwq4j7taVfnsi7kqzTlRU:kAV+0ezm7ByBwq4j5mfns2kq/lRU
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

0: [No Data]

Trojan.Heur.PT.qiZabO00xDlb also known as:

BkavW32.AIDetectVM.malware2
Elasticmalicious (high confidence)
MicroWorld-eScanGen:Trojan.Heur.PT.qiZabO00xDlb
FireEyeGeneric.mg.542d733b27172b0f
CylanceUnsafe
VIPREVirus.Win32.Sality.at!dam (v)
SangforMalware
K7AntiVirusVirus ( f10001071 )
BitDefenderGen:Trojan.Heur.PT.qiZabO00xDlb
K7GWVirus ( f10001071 )
Cybereasonmalicious.b27172
CyrenW32/RLPacked.A.gen!Eldorado
SymantecML.Attribute.HighConfidence
APEXMalicious
AvastWin32:Sality [Inf]
ClamAVWin.Dropper.Gh0stRAT-7414189-0
KasperskyHEUR:Trojan.Win32.Generic
NANO-AntivirusTrojan.Win32.Ranky.wvfr
RisingMalware.Heuristic!ET#99% (RDMK:cmRtazp0awl6iP3U5PO3TZ3d91ym)
Ad-AwareGen:Trojan.Heur.PT.qiZabO00xDlb
SophosML/PE-A
F-SecureTrojan.TR/Patched.Ren.Gen
DrWebTrojan.Click1.57197
ZillyaDownloader.Agent.Win32.86076
McAfee-GW-EditionBehavesLike.Win32.Backdoor.dc
EmsisoftGen:Trojan.Heur.PT.qiZabO00xDlb (B)
IkarusWin32.Outbreak
JiangminTrojanDownloader.Agent.cwcr
eGambitHackTool.Generic
AviraTR/Patched.Ren.Gen
Antiy-AVLTrojan/Win32.Unknown
MicrosoftTrojanDownloader:Win32/Emotet!ml
ArcabitTrojan.Heur.PT.qiZabO00xDlb
ZoneAlarmHEUR:Trojan.Win32.Generic
GDataGen:Trojan.Heur.PT.qiZabO00xDlb
CynetMalicious (score: 100)
AhnLab-V3Packed/Win32.Morphine.C191392
Acronissuspicious
BitDefenderThetaAI:Packer.D2F06C1D1F
ALYacGen:Trojan.Heur.PT.qiZabO00xDlb
MAXmalware (ai score=84)
VBA32Trojan.Click
MalwarebytesMalware.Heuristic.1003
TencentWin32.Trojan.Generic.Star
YandexTrojan.Agent!9P95aQdit0M
SentinelOneStatic AI – Malicious PE
MaxSecureTrojan.Malware.300983.susgen
AVGWin32:Sality [Inf]
CrowdStrikewin/malicious_confidence_80% (D)
Qihoo-360HEUR/QVM18.1.0C47.Malware.Gen

How to remove Trojan.Heur.PT.qiZabO00xDlb?

Trojan.Heur.PT.qiZabO00xDlb removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment